Virusign
Info

Details for 15fb5d63868997f4029191530066dc87e19a194f90ab51d22e2f8b7f4ac435f2

NamePH.exe
Date (Y-m-d)2017-12-21
Size (Bytes)746496 (729KB)
FilePE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
TrID72.2% (.EXE) Generic CIL Executable (.NET, Mono, etc.) (73294/58/13)
12.9% (.SCR) Windows screen saver (13101/52/3)
6.4% (.DLL) Win32 Dynamic Link Library (generic) (6578/25/2)
4.4% (.EXE) Win32 Executable (generic) (4508/7/1)
1.9% (.EXE) Generic Win/DOS Executable (2002/3)
CRC32340da38c
MD50596f499afbcde71280f3019b8408512
SHA194254a5d551cb2d91d6cba718f2d15e800197072
SHA25615fb5d63868997f4029191530066dc87e19a194f90ab51d22e2f8b7f4ac435f2
ImpHashf34d5f2d4577ed6d9ceec516c1f5a744
ImpFuzzy3:rGsLdAIEK:tf
SSDeep12288:akrsE6vajPIEEnU1n/1ntSJx9zUOyDdURNa4fO2S672++ih+L5HBAmxkjqAryyI:0aPknanBkx9zQDdKXO2xD+isL5h7kjqN
Online Analysis 1x
Online Analysis 2x
Online Analysis 3http://sarvam.ece.ucsb.edu/analysis/0596f499afbcde71280f3019b8408512
AV1 (ClamAV) StatusNo detection
AV2 AV3 AV4 AV5 AV6 AV7 StatusDetected on 2017-12-21
AV1 DetectionOK
AV1 Virus Signatures VersionClamAV 0.99.4/24673/Mon Jun 18 04:36:28 2018 (2018-06-18)
AV2 DetectionTrojan.MSIL.Crypt
AV2 Virus Signatures VersionVDB: 10.12.2017 19:08:45 (Build: 99992) (2017-12-11)
AV3 DetectionWin32:Malware-gen
AV3 Virus Signatures Version17123100 (2018-01-02)
AV4 DetectionTrojan horse Atros6.AUBM
AV4 Virus Signatures Version4767/15239 Thu, 21 Dec 2017 02:02:00 +0000 (2017-12-21)
AV5 DetectionW32/S-df4dae5e!Eldorado
AV5 Virus Signatures Version201712211055 (2017-12-21)
AV6 DetectionMal/Generic-S
AV6 Virus Signatures Version5.46 28 November 2017 (2017-12-30)
AV7 DetectionTrojan.Agent.CSCC(DB)
AV7 Virus Signatures Version7.74253 (2017-12-21)